This IP address has been reported a total of
7
times from
6 distinct
sources.
34.138.38.184 was first reported on
September 3rd 2026 , and the most recent report was
2 weeks ago .
In the last 60 days, the top reporter locations were:
Netherlands
with 5
reports;
Germany
with 1
report;
France
with 1
report.
The most common categories in these recent reports were:
Web App Attack
6
times;
Bad Web Bot
4
times;
Brute-Force
2
times;
Port Scan
1
time;
Hacking
1
time.
Old Reports
The most recent abuse report for this IP address is from
2 weeks ago . It is possible that this IP is no
longer involved in abusive activities.
Reporter
IoA Timestamp (UTC)
Comment
Categories
๐ณ๐ฑ
Alt255
2026-09-11 12:24:34
(2 weeks ago)
34.138.38.184 - - \[07/Sep/2026:07:07:00 +0200\] "GET /static../.env HTTP/1.1" 404 2065 "-" "Mozilla ...
show more
34.138.38.184 - - \[07/Sep/2026:07:07:00 +0200\] "GET /static../.env HTTP/1.1" 404 2065 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 14_6_1\) AppleWebKit/537.36 \(KHTML, like Gecko\; compatible\; Twitterbot/1.0\) Chrome/128.0.9004.192 Safari/537.36 Edg/128.0.9004.192"
34.138.38.184 - - \[07/Sep/2026:07:07:01 +0200\] "GET /media../.env HTTP/1.1" 404 2065 "-" "Mozilla/5.0 \(Macintosh\; Intel Mac OS X 14_6_1\) AppleWebKit/537.36 \(KHTML, like Gecko\; compatible\; facebookexternalhit/1.1\; +http://www.facebook.com/externalhit_uatext.php\) Chrome/147.0.2993.81 Safari/537.36"
34.138.38.184 - - \[07/Sep/2026:07:07:01 +0200\] "GET /.env HTTP/1.1" 404 2637 "-" "Mozilla/5.0 AppleWebKit/537.36 \(KHTML, like Gecko\)\; compatible\; Slackbot-LinkExpanding/1.0\; +https://api.slack.com/robots"
34.138.38.184 - - \[07/Sep/2026:07:07:01 +0200\] "GET /.aws/credentials HTTP/1.1" 404 2637 "-" "Mozilla/5.0 \(Linux\;
...
show less
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-07 06:01:16
(2 weeks ago)
20 attempts against mh-misbehave-ban on flow
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-07 05:20:17
(2 weeks ago)
denied traffic to a honeypot network. destination port 8443.
Port Scan
Hacking
๐ซ๐ท
dynamix
2026-09-07 04:59:16
(2 weeks ago)
Multiple WAF Violations
Web App Attack
๐ณ๐ฑ
Savvii
2026-09-07 03:59:15
(2 weeks ago)
94 attempts against mh-misbehave-ban on glow
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-06 05:41:41
(2 weeks ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
Anonymous
2026-09-03 14:34:31
(3 weeks ago)
[Thu Sep 03 14:34:30.739461 2026] [security2:error] [pid 2396932:tid 2396932] [client 34.138.38.184: ...
show more
[Thu Sep 03 14:34:30.739461 2026] [security2:error] [pid 2396932:tid 2396932] [client 34.138.38.184:57944] [client 34.138.38.184] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 8)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.5"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "95.211.63.1"] [uri "/.aws/config"] [unique_id "apmFdt0ei2CtMQ6vCrnsSgAAAAs"]
[Thu Sep 03 14:34:31.058641 2026] [security2:error] [pid 2393136:tid 2393136] [client 34.138.38.184:58090] [client 34.138.38.184] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/usr/share/modsecurity-crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 8)"]
...
show less
Web App Attack
Showing 1 to
7
of 7 reports